This repository contains the public work I produced, wheter it is research, post, slides, sometimes videos, and materials of my talks.
☆53Mar 31, 2026Updated 4 months ago
Alternatives and similar repositories for Publications
Users that are interested in Publications are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Tool to keep Track of Chromium Releases with automatic Commit detection for V8 bugs☆16Dec 4, 2025Updated 8 months ago
- This project hosts security advisories and their accompanying proof-of-concepts related to research conducted at Google which impact non-…☆17May 18, 2026Updated 2 months ago
- This repository contains PoC for CVE-2024-7965. This is the vulnerability in the V8 that occurs only within ARM64.☆50Sep 16, 2024Updated last year
- In-depth reverse engineering of a suspected LockBit affiliate dropper, documenting shellcode loading, import polymorphism, and payload de…☆15Jan 24, 2026Updated 6 months ago
- AyedFuzzer is a small File-Format-Fuzzer with 3 options (File-mutating, WinDbg-interactive monitor, multi-processing) for windows executa…☆17Dec 2, 2024Updated last year
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- ☆22Dec 1, 2025Updated 8 months ago
- A in-the-wild V8 type confusion bug.☆30Aug 8, 2025Updated last year
- some AV / EDR / analysis studies☆10May 21, 2023Updated 3 years ago
- ☆49May 13, 2024Updated 2 years ago
- BOF for C2 framework☆45Nov 9, 2024Updated last year
- ☆16May 15, 2021Updated 5 years ago
- Advanced exploits that I wrote for Pwn2Own competitions and other occasions☆170Mar 23, 2024Updated 2 years ago
- Full Chain Analysis of CVE-2022-4262, a non-trivial feedback slot type confusion in V8.☆105Feb 12, 2025Updated last year
- A Pwn2Own 2024 SpiderMonkey JIT Bug: From Integer Range Inconsistency to Bound Check Elimination then RCE☆97Feb 12, 2025Updated last year
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Atlassian Confluence Server 7.5.1 Pre-Authorization Arbitrary File Read vulnerability (CVE-2021-26085)☆13Oct 12, 2021Updated 4 years ago
- ☆55Aug 26, 2022Updated 3 years ago
- Atlassian Jira Server/Data Center 8.4.0 - Arbitrary File read (CVE-2021-26086)☆25Oct 12, 2021Updated 4 years ago
- REcon 2024 Repo, slides for talk "GOP Complex: Image parsing bugs, EBC polymorphic engines and the Deus ex machina of UEFI exploit dev""☆14Mar 31, 2025Updated last year
- Documentation for Vilo router vulnerability research☆15Oct 21, 2024Updated last year
- Exports monitoring plugin for x64dbg☆23Mar 14, 2023Updated 3 years ago
- ☆15Oct 16, 2025Updated 9 months ago
- A simple Windows application that allows the user to pick between IDA installation for the given file.☆31Oct 11, 2025Updated 10 months ago
- asnfuzzgen - ASN.1 Structure-Aware Fuzzing Compiler☆53Aug 27, 2024Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A tool combining DWARF info and source to search for kernel heap objects☆26Dec 23, 2025Updated 7 months ago
- Slides for COM Hijacking AV/EDR Talk on 38c3☆75Jan 3, 2025Updated last year
- Exploit for CVE-2024-5009☆13Jul 8, 2024Updated 2 years ago
- Official Solution and Source Code for the "Mock Kernel" challenge from UIUCTF 2023☆48Jul 11, 2023Updated 3 years ago
- Static binary instrumentation for windows kernel drivers, to use with winafl☆81Feb 5, 2025Updated last year
- ☆24Feb 18, 2025Updated last year
- Mega repo for exploit development. Contains individual exploits and libraries to assist during exploitation☆47Jun 17, 2022Updated 4 years ago
- CVE-2024-8381: A SpiderMonkey Interpreter Type Confusion Bug.☆15Feb 12, 2025Updated last year
- Produce code coverage reports for AFL++ fuzzing campaigns with source code or in binary-only mode☆35Jul 18, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- weggli ruleset scanner for source code and binaries☆41Nov 16, 2025Updated 8 months ago
- TrashDBG the world's worse debugger☆23Feb 17, 2022Updated 4 years ago
- CodeMirror bindings for ShareDB.☆11Feb 24, 2019Updated 7 years ago
- Binary code coverage visualizer plugin for Ghidra - just without crashes on unknown insns☆19Nov 2, 2024Updated last year
- CSS injection requires an attacker to load a standalone CSS file to leak HTML tag attributes.☆21Apr 19, 2024Updated 2 years ago
- ex-redirect — An automated open redirect scanner using Wayback Machine archives. Supports subdomain grouping, live URL filtering, and Wor…☆15May 9, 2025Updated last year
- ☆35Aug 30, 2024Updated last year